Marriott International Details

    Organization Logo

    Marriott International

    Bethesda, Maryland employees • Hospitality

    Industry

    Hospitality

    Security Incidents

    1

    Marriott International, Inc. is an American multinational company that operates, franchises, and licenses lodging brands that include hotel, residential, and timeshare properties.

    Security Incidents

    Marriott International Breach of Mar 2020
    Severity Score
    High

    Type

    Data Breach

    Summary

    In October 2024, Marriott International and its subsidiary Starwood Hotels faced significant repercussions following a series of data breaches occurring between 2014 and 2020, affecting over 344 million individuals worldwide. These breaches exposed sensitive customer data, including payment card information and millions of unencrypted passport numbers. An FTC-led action and a settlement with a coalition of 49 state attorneys general concluded with Marriott agreeing to a $52 million penalty and the establishment of a robust information security program.

    The security lapses were primarily attr...
    Show more

    Severity

    The series of data breaches that occurred with Marriott and its subsidiary Starwood Hotels between 2014 and 2020 had significant consequences, affecting over 344 million customers worldwide. The breaches revealed sensitive information including payment card details, passport numbers, and personal contact information over extended periods, with some incidents going undetected for years. The impact was far-reaching, prompting regulatory actions from the Federal Trade Commission and various state attorneys general, resulting in a $52 million settlement and stringent requirements to overhaul their...
    Show more

    Impact

    The incident involving Marriott and its subsidiary, Starwood Hotels, constituted a series of significant data breaches occurring over several years, from 2014 to 2020. These breaches resulted in the exposure of sensitive customer data, including payment card numbers, passport data, email addresses, birth dates, and more. In total, these breaches impacted over 344 million customers globally. Specifically, the breaches enabled attackers to steal vast amounts of personal data due to weaknesses in Marriott's cybersecurity posture, such as poor password controls and inadequate network monitoring.

    ...
    Show more